Fake notification of lottery wins

This type of scam is similar to the Nigerian email fraud. The idea is the same – fraudsters promise recipients the Moon trying to get access to their bank accounts or make them pay ‘initial expenses’.

Generally, the sum purportedly ‘won’ is over $500,000. The initial sum requested from the recipient of the email is a very small fraction when compared to the amount that they have ‘won’. The fraudsters usually ask for between several hundred and several thousand dollars on some pretext or other – this may be commission for the money transfer, a tax, the necessity to open a bank account, etc.

Unfortunately, very few ‘lucky winners’ are bothered by the fact that they never participated in the lottery in which they supposedly won these millions of Dollars. Fraudsters often don’t even bother to create a fake site for their lottery and it doesn’t occur to the naive ‘winner’ that notifications from a genuine lottery organizer will never be sent from a free email server. Neither will they be sent from addresses that look like random sequences (for example, ltfltdclasdf@yahoo.com).

Generally fake notifications ask a recipient to keep this information confidential (‘To avoid duplicate claims, you are advised to keep all winning lottery information and numbers private, in line with our company’s security protocol).

Before taking action to claim their prize, the ‘winners’ should pause for a moment and try to answer the following questions:

  1. Have you participated in this lottery? If not, then you are most likely being targeted by conmen.
  2. Have you been asked to pay money on some pretext or other? All legitimate lottery websites contain information stressing that no initial payments are required in order to receive a prize that is due to you.
  3. What address is shown in the From field? A legitimate lottery notification would never be sent from msn.com, hotmail.com, netscape.net, yahoo.com and other similar email hosts.

As per the Nigerian email fraud, fake notifications of lottery wins are mostly English-language messages, though there are also messages in French, German, Spanish and other languages, usually in the same format, with the text in these messages having been translated from the English-language originals using an online translator.

There are also Russian-language versions of such messages, but they are very rare.

An example of a fake English-language lottery notification

lott_01

An example of a fake Russian-language lottery notification

lott_02

spam-and-phishing-in-q1-2018

Spam and phishing in Q1 2018

The quarter’s main topic, one that we will likely return to many times this year, is personal data. It remains one of the most sought-after wares in the world of information technology for app and service developers, owners of various agencies, and, of course, cybercriminals. Unfortunately, many users still fail to grasp the need to protect their personal information and don’t pay attention to who and how their data is transferred in social media. Read Full Article

tens-of-thousands-per-gram

Tens of thousands per Gram

In late 2017, information appeared on specialized resources about a Telegram ICO to finance the launch of its own blockchain platform. The lack of information provided fertile ground for scammers: the rumors prompted mailshots seemingly from official representatives of the platform, inviting people to take part in the ICO and purchase tokens. Read Full Article

cryptoransom-spam

Every little bitcoin helps

It often happens that inventions and technologies that start out good end up turning into dangerous tools in the hands of criminals. Blockchain is no exception to this rule, especially in its most common cryptocurrency incarnation. The attacks targeted employees of small companies, but such emails could be sent to any user’s personal mail. Read Full Article

it-threat-evolution-q3-2017

IT threat evolution Q3 2017

Our growing dependence on technology, connectivity and data means that businesses present a bigger attack surface than ever. Targeted attackers have become more adept at exploiting their victims’ vulnerabilities to penetrate corporate defences while ‘flying under the radar’. Read Full Article

spam-and-phishing-in-q3-2017

Spam and phishing in Q3 2017

In terms of the average share of spam in global email traffic (58.02%), the third quarter of 2017 was almost identical to the previous reporting period: once again growth was slightly more than one percentage point – 1.05 (and 1.07 p.p. in Q2 2017). As in previous quarters, spammers were quick to react to high-profile events and adapted their fraudulent emails to the news agenda. Read Full Article

spam-and-phishing-in-q2-2017

Spam and phishing in Q2 2017

In Q2 2017, the average share of spam in global email traffic amounted to 56.97%, which was only 1.07 p.p. more than in the previous quarter. One of the most notable events of this quarter – the WannaCry epidemic – did not go unnoticed by spammers: numerous mass mailings contained offers of assistance in combating the ransomware. Read Full Article